Known vulnerabilities in SUSE Manager Proxy - page 281

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_manager_proxy:*:*:*:*:*:*:*:*
Total vulnerabilities: 6824
Public exploits: 209
Known exploited (KEV): 70
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Manager Proxy SUSE Manager Proxy is affected by 6824 known vulnerabilities: 41 critical, 741 high, 1577 medium, 4465 low Critical High Medium Low

Vulnerabilities (6824)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU67508 - Out-of-bounds read
CVE-2022-39190
CWE-125 Low
No
No
- 20.09.2022 SB2022092040
SB2022092046
SB2022092047
and 15 more
#VU67478 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-39188
CWE-362 Low
No
No
- 20.09.2022 SB2022092004
SB2022092006
SB2022092010
and 83 more
#VU67361 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2021-39360
CWE-300 Medium
No
No
- 14.09.2022 SB2021082208
SB2022091458
SB2022091459
and 4 more
#VU67277 - Out-of-bounds read
CVE-2022-37032
CWE-125 Medium
Available
No
- 13.09.2022 SB2022091376
SB2022091378
SB2022101848
and 10 more
#VU67275 - Missing release of memory after effective lifetime
CVE-2019-25074
CWE-401 Medium
No
No
- 13.09.2022 SB2022091376
SB2022091378
#VU66990 - NULL Pointer Dereference
CVE-2022-2850
CWE-476 Medium
No
No
- 06.09.2022 SB2022090601
SB2022090606
SB2022091702
and 11 more
#VU66922 - Improper input validation
CVE-2022-36059
CWE-20 Low
No
No
- 01.09.2022 SB2022090140
SB2022090306
SB2022090669
and 11 more
#VU66921 - Security Features
CVE-2022-3034
CWE-254 Medium
No
No
- 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 11 more
#VU66920 - Security Features
CVE-2022-3032
CWE-254 Low
No
No
- 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 11 more
#VU66919 - Exposure of sensitive information to an unauthorized actor
CVE-2022-3033
CWE-200 Medium
No
No
- 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 13 more
#VU66152 - Resource exhaustion
CVE-2021-46828
CWE-400 Medium
No
No
- 07.08.2022 SB2022080701
SB2022080703
SB2022090161
and 20 more
#VU64769 - Improper Verification of Cryptographic Signature
CVE-2022-2226
CWE-347 Low
No
No
- 29.06.2022 SB2022062903
SB2022070102
SB2022070103
and 15 more
#VU63881 - Security Features
CVE-2022-31744
CWE-254 Medium
No
No
- 31.05.2022 SB2022053116
SB2022061323
SB2022062901
and 32 more
#VU62797 - Improper Locking
CVE-2021-20291
CWE-667 Medium
No
No
- 04.05.2022 SB2021040182
SB2022050417
SB2022092037
and 13 more
#VU58365 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2021-41819
CWE-451 Medium
No
No
- 25.11.2021 SB2021112503
SB2022011920
SB2022020413
and 21 more
#VU54940 - Exposure of sensitive information to an unauthorized actor
CVE-2021-3602
CWE-200 Low
No
No
- 19.07.2021 SB2021071902
SB2021072007
SB2022092037
and 7 more
#VU48721 - Insufficiently Protected Credentials
CVE-2020-15157
CWE-522 Medium
No
No
- 16.10.2020 SB2020101613
SB2020112014
SB2021022805
and 5 more
#VU47117 - Exposure of sensitive information to an unauthorized actor
CVE-2020-14370
CWE-200 Low
No
No
- 23.09.2020 SB2020092707
SB2020092708
SB2020092808
and 7 more
#VU31897 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2020-14001
CWE-74 High
No
No
- 27.07.2020 SB2020072739
SB2020081409
SB2020061736
and 8 more
#VU6900 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2017-6512
CWE-362 Low
No
No
- 05.06.2017 SB2017060503
SB2017060504
SB2017091703
and 8 more


Showing elements 5601 - 5620 out of 6824